Location
London
Hours
Full Time
Salary
Negotiable
About the Role
The London Stock Exchange Group (LSEG) is seeking an experienced, dedicated and driven Senior Attack Monitoring Analyst to join the Global Security Operations Centre (GSOC) team. LSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. This role is responsible for identifying and responding to cyber security incidents and improving the defensive capabilities of the GSOC. The ideal candidate will have a solid technical background, a firm understanding of modern attack techniques, and knowledge of the typical lifecycle of an attack.
The Senior Attack Monitoring Analyst will triage security events and employ methodical, coherent responses to security incidents, adopting playbooks where necessary. They will competently operate a chosen SIEM (e.g., Splunk, QRadar, LogRhythm) for incident investigations or for developing monitoring dashboards. The role involves utilising playbooks, existing knowledge, and accurate online resources for guidance when responding to incidents, as well as researching and collecting threat intelligence to improve the SOC’s detection capabilities. The analyst will develop new or improve existing run books and use cases based on investigations and knowledge of modern attacks, stay up to date with current vulnerabilities, attacks, and countermeasures, and identify, respond to, and remediate cyber events generated through monitoring technologies.
LSEG is a leading global financial markets infrastructure and data provider, committed to driving financial stability, empowering economies, and enabling customers to create sustainable growth. Joining LSEG means becoming part of a dynamic organisation of 25,000 people across 65 countries, where individuality is valued and diversity is embraced. The company fosters a collaborative and creative culture encouraging new ideas and is committed to sustainability and community support through the LSEG Foundation. LSEG offers a range of tailored benefits including healthcare, retirement planning, paid volunteering days, and wellbeing initiatives.
Experience
- Preferred experience operating or administrating a SIEM (e.g., Splunk, QRadar, LogRhythm)
- Solid understanding of networks including the TCP/IP stack, typical organisational architectures, and common protocols abused by malware
- Experience in security event analysis and triage, incident handling, and root-cause identification
- Understanding of attacker tools, techniques, and procedures, ideally from direct experience
- Knowledge of cyber security either academically or within corporate environments
- Ability to work in a fast-paced and demanding environment while remaining calm
- Strong verbal and written communication and collaboration skills
About you
Enthusiastic and driven professional with a strong technical background, able to work effectively under pressure and collaborate within a team. You are committed to continuous learning and staying current with evolving cyber threats and defensive measures.
Qualifications
- Security industry specific and core technical accreditations such as OSCP, GIAC, CCNA
- Certification demonstrating SIEM operational competences
- Proficient with one or more programming languages (e.g., Python, PowerShell, Java, C#)
London Stock Exchange Group











